Principal Adviser Cyber Security

• Must have a strong background in cyber security or information security with a clear understanding of the challenges of leading business change
• Ability to build and maintain appropriate and effective business relationships
• You are required to have analytical and problem-solving abilities to identify and work with stakeholders to mitigate information security and cyber security risks.
• Good team working skills to develop cyber security solutions in collaboration with other information technology professionals
• You will require expert knowledge of information security governance, risk, and compliance.
• The role also requires strong stakeholder and change management skills, as it works with the business to implement cyber security and information security requirements across QCS

Please refer to role profile for full details.

  • Lead the implementation, adoption, and continuous improvement of the Department's Information Security Management System (ISMS).
  • Develop and maintain an information security policy framework for QCS
  • Develop and implement an information security threat and risk assessment process through engaging with internal and external stakeholders to ensure identified risks and treatments are managed effectively and in line with the QCS risk management framework and appetite.
  • Undertake threat modelling and information security threat and risk assessments of assets in scope of the QCS ISMS.
  • Work with stakeholders in undertaking information security classification assessments.
  • Perform secretariat duties for governance committees and working groups as required.
  • Implement, lead, and manage a cyber security awareness program for all QCS employees.
  • Develop and lead cyber security assurance activities as required (e.g. vulnerability threat management, Microsoft Purview).
  • Develop cyber security reports, briefing papers, and presentations for senior executive and committees.
  • Promote cyber security best practice by developing and maintaining positive working relationships with key internal and external stakeholders.
  • Acquire and maintain knowledge of contemporary cyber security/information security best practice and act as an active champion of cyber security/information security best practice within QCS.
  • perform other duties as required.

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available